A Sandbox Designed on User-level Virtualization Platform

被引:0
|
作者
Xie Jin [1 ]
机构
[1] Hunan Univ, Informat Sci & Engn, Changsha 410082, Hunan, Peoples R China
关键词
sandbox; dune; hardware support; API interception; information security;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Network has been widely applied in all aspects of life with time. Spread of malicious programs and harm thereof are also gradually increased with network. Sandbox provides high isolation environment for operation of suspicious program, thereby detecting malicious code effectively. However, there are some problems and disadvantages in sandboxes which are popular at present. Therefore, we establish a sandbox on user-level virtualization platform, which is called Dune[1]. The so-called user-level virtualization refers to a virtualization platform capable for providing direct and safe privileged operation for application programs. It is called Dune[1]. Compared with VMM [2] which provides support for operation system, Dune is more compact and lightweight. Meanwhile, sandbox, as an application program, is operated under dune, which can be operated under privileged mode by the aid of VT-x[3]. Privileged operation can be provided directly and safely, mode switch can be reduced compared with sandbox in the application layer in the aspect of intercepting API calls[4]. Experimental results showed that dune-based sandbox can guarantee higher performance on the basis of smaller scale.
引用
收藏
页码:183 / 187
页数:5
相关论文
共 50 条
  • [1] Security and Performance in the Delegated User-level Virtualization
    Chen, Jiahao
    Li, Dingji
    Mi, Zeyu
    Liu, Yuxuan
    Zang, Binyu
    Guan, Haibing
    Chen, Haibo
    [J]. PROCEEDINGS OF THE 17TH USENIX SYMPOSIUM ON OPERATING SYSTEMS DESIGN AND IMPLEMENTATION, OSDI 2023, 2023, : 227 - 245
  • [2] Codec-on-Demand Based on User-Level Virtualization
    Zhang, Youhui
    Zheng, Weimin
    [J]. IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2009, E92D (12): : 2422 - 2429
  • [3] Portable Desktop Applications Based on User-Level Virtualization
    Zhang, Youhui
    Wang, Xiaoling
    Hong, Liang Su
    Wang, Dongsheng
    [J]. 2008 13TH ASIA-PACIFIC COMPUTER SYSTEMS ARCHITECTURE CONFERENCE, 2008, : 217 - 222
  • [4] General virtual hosting via lightweight user-level virtualization
    Surányi, P
    Abe, H
    Hirotsu, T
    Shinjo, Y
    Kato, K
    [J]. 2005 SYMPOSIUM ON APPLICATIONS AND THE INTERNET, PROCEEDINGS, 2005, : 229 - 236
  • [5] Characterizing user-level network virtualization: performance, overheads and limits
    Tsugawa, Mauricio
    Fortes, Jose A. B.
    [J]. INTERNATIONAL JOURNAL OF NETWORK MANAGEMENT, 2010, 20 (03) : 149 - 166
  • [6] A Cloud Gaming System Based on User-Level Virtualization and Its Resource Scheduling
    Zhang, Youhui
    Qu, Peng
    Cihang, Jiang
    Zheng, Weimin
    [J]. IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2016, 27 (05) : 1239 - 1252
  • [7] Automatic software deployment using user-level virtualization for cloud-computing
    Zhang, Youhui
    Li, Yanhua
    Zheng, Weimin
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2013, 29 (01): : 323 - 329
  • [8] Learning with User-Level Privacy
    Levy, Daniel
    Sun, Ziteng
    Amin, Kareem
    Kale, Satyen
    Kulesza, Alex
    Mohri, Mehryar
    Suresh, Ananda Theertha
    [J]. ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 34 (NEURIPS 2021), 2021, 34
  • [9] Flexible user-level scheduling
    Craig, D
    Polychronopoulos, C
    [J]. PARALLEL AND DISTRIBUTED COMPUTING SYSTEMS, 2000, : 93 - 98
  • [10] On the User-Level Satisfactions with User-Level Utility Functions: A Case Study with Scheduling in TDMA Wireless Networks
    Kim, Sungyeon
    Lee, Jang-Won
    [J]. IEICE TRANSACTIONS ON COMMUNICATIONS, 2010, E93B (04) : 1037 - 1040